To which the reply was "they'll just make the LLM able to better defend itself".
And my point was "the attackers will learn to build better prompts, too".
To which the reply was "they'll just make the LLM able to better defend itself".
And my point was "the attackers will learn to build better prompts, too".